Feature/addruletype to sigma rule#230 (#235)

* added ruletype to SIGMA rule #230

* added ruletype to SIGMA rule converter tool #231
This commit is contained in:
DustInDark
2021-11-28 18:14:51 +09:00
committed by GitHub
parent bc230f7cd5
commit 0cfa806baf
1087 changed files with 1186 additions and 90 deletions

View File

@@ -35,3 +35,4 @@ tags:
- attack.g0069
- attack.g0080
- car.2019-04-001
ruletype: SIGMA

View File

@@ -30,3 +30,4 @@ tags:
- attack.t1106
- attack.defense_evasion
- attack.t1562.001
ruletype: SIGMA

View File

@@ -76,3 +76,4 @@ tags:
- attack.t1003
- attack.s0002
- car.2019-04-004
ruletype: SIGMA

View File

@@ -23,3 +23,4 @@ status: experimental
tags:
- attack.execution
- attack.t1106
ruletype: SIGMA

View File

@@ -77,3 +77,4 @@ tags:
- attack.t1055.001
- attack.t1055.002
- attack.t1055
ruletype: SIGMA

View File

@@ -30,3 +30,4 @@ tags:
- attack.defense_evasion
- attack.t1562.002
- attack.t1089
ruletype: SIGMA

View File

@@ -34,3 +34,4 @@ tags:
- attack.credential_access
- attack.t1003.001
- attack.s0349
ruletype: SIGMA

View File

@@ -27,3 +27,4 @@ tags:
- attack.execution
- attack.t1204.002
- attack.t1055.003
ruletype: SIGMA

View File

@@ -30,3 +30,4 @@ tags:
- attack.defense_evasion
- attack.privilege_escalation
- attack.t1548.002
ruletype: SIGMA

View File

@@ -29,3 +29,4 @@ status: experimental
tags:
- attack.credential_access
- attack.t1003.001
ruletype: SIGMA

View File

@@ -32,3 +32,4 @@ tags:
- attack.t1003.001
- attack.t1003
- attack.s0002
ruletype: SIGMA

View File

@@ -38,3 +38,4 @@ tags:
- attack.defense_evasion
- attack.privilege_escalation
- attack.t1055
ruletype: SIGMA

View File

@@ -34,3 +34,4 @@ tags:
- attack.t1021.006
- attack.t1028
- attack.s0002
ruletype: SIGMA

View File

@@ -35,3 +35,4 @@ status: experimental
tags:
- attack.credential_access
- attack.t1003.001
ruletype: SIGMA

View File

@@ -26,3 +26,4 @@ logsource:
status: experimental
tags:
- attack.t1548
ruletype: SIGMA

View File

@@ -28,3 +28,4 @@ tags:
- attack.defense_evasion
- attack.privilege_escalation
- attack.t1548.002
ruletype: SIGMA

View File

@@ -33,3 +33,4 @@ tags:
- attack.initial_access
- attack.persistence
- attack.privilege_escalation
ruletype: SIGMA